What you will answer
MFA, Conditional Access, privileged roles, Exchange Online, Defender for Office 365, SharePoint, OneDrive, Teams, Intune, backup, audit logs, and evidence readiness.
Are you responsible for Microsoft 365 and not sure where your tenant stands with identity, email, sharing, Teams, endpoints, audit logs, backup, and security monitoring? Use this guided self-assessment to identify gaps, prioritize work, and generate a practical report in about 10 to 15 minutes.
What this tool does
This self-assessment is built for IT administrators, IT managers, security managers, CISOs, office managers, and business technology leaders responsible for Microsoft 365. Start by choosing your role, then select the Microsoft 365 areas and service responsibilities you manage.
At the end, you receive a dashboard, tenant security score, prioritized findings, recommended technical actions, and direct learning links to IT Perfection encyclopedia pages that match weak or uncertain answers.
Need help beyond the self-assessment? IT Perfection helps businesses operate and support Microsoft 365, while OC Security Audit provides independent Office 365 and Microsoft 365 security audit services. Review related guidance on Microsoft 365 security configuration, monthly Microsoft 365 security reviews, Defender for Office 365 security, Microsoft Office 365 full audits, Microsoft 365 security risk checks, and Microsoft 365 email security services.
MFA, Conditional Access, privileged roles, Exchange Online, Defender for Office 365, SharePoint, OneDrive, Teams, Intune, backup, audit logs, and evidence readiness.
An executive-friendly score, category risk bars, high-priority task list, remediation roadmap, and links to relevant ITperfection.com learning resources.
Most teams can complete a useful first pass in 10 to 15 minutes. A deeper review may take longer if you verify answers against systems while completing it.
Deliverables
Overall score, maturity level, category risk, unanswered items, and high-priority issue count.
Each weak answer becomes a finding with risk, business impact, how to verify it, and recommended action.
Tasks are sorted by priority so owners can start with the items most likely to reduce outages, exposure, or confusion.
The tool recommends related IT Perfection pages from the 900-page catalog so your team can learn more about each topic.
Interactive Tool
Start with your Microsoft 365 responsibility, then select the tenant areas and services you manage. The questionnaire will adjust and generate a focused report.
Choose the Microsoft 365 areas you manage or influence. Include identity, Exchange Online, SharePoint, OneDrive, Teams, Defender, Intune, backup, audit logs, and compliance evidence where applicable.
Choose the recurring responsibilities you handle, such as operations management, monitoring, patching, backup, security administration, documentation, compliance, vendor coordination, or reporting.
Select at least one system area or service responsibility to load the assessment questions.
The report includes a score, maturity level, category risk summary, findings, recommended tasks, and IT Perfection learning links.
Knowledge Base
The tool uses these pages to recommend next steps. Search by system, vendor, risk area, keyword, or page title.
This tool is for initial guidance only and does not replace a professional IT assessment, cybersecurity audit, compliance assessment, penetration test, legal review, or formal risk assessment. Your answers are processed in your browser. Use the results as a starting point for review, planning, validation, and follow-up with qualified IT or cybersecurity professionals.

Created by Ali Hassani
Ali Hassani is a CISO, cybersecurity and IT consultant, and IT infrastructure leader with 25+ years of experience helping organizations manage Microsoft infrastructure, networks, servers, cloud services, cybersecurity controls, documentation, and operational risk. His credentials include CISSP, CCISO, CCNP, CCNA, MCSE, MCSA Security, MCITP, MCP, and MCTS.







IT Perfection can help with managed IT, co-managed IT, Microsoft 365, Azure, endpoint management, backup, server, network, documentation, monitoring, and remediation follow-through. For cybersecurity audits, compliance readiness, and vCISO support, the report can also point to OC Security Audit resources.
We use necessary cookies and limited analytics and advertising-measurement cookies. Select Accept to allow optional cookies or Deny to continue with necessary cookies only. No name or email is required. You may close this website at any time.